Changelog:
Fixed one vulnerability in admin_board.php - Xore
Added checking for proper session id characters to sessions and viewtopic to prevent injections - Bartlomiej Korupczynski
Fixed injection vulnerabilities possible with linked avatars
Implemented unsetting globalised variables
Limited confirm switch to POST variable in posting
Changed IP code in common.php to prevent IP spoofing
Updated visual confirmation mod [pre-edited files]
Moved obtaining word censors in modcp out of topic generation loop [increased performance/lower query count] - spotted by R45
Added the ability to link to https/ftps sites using the img bbcode tag
Fixed user online information in admin/index.php
Fixed getting group moderator in groupcp.php if running oracle backend - spotted by pakman
Fixed use of non-existing result variable in modcp (poster_id instead of user_id)
Fixed several vulnerabilities (XSS, SQL Injection and path disclosure) only possible with register_globals enabled - Matthew C. Kavanagh, Janek Vind
Fixed problem with SID not delivered to next page in groupcp.php
Download here.
BBtoNuke 2.0.9
Posted on Tuesday, July 13, 2004 @ 14:59:34 CDT in Modules
|
Phpbb v2.0.9 for Nuke
Posted on Monday, July 12, 2004 @ 22:42:45 CDT in Modules
|
Announcements & Classifieds module now ready
Posted on Saturday, July 03, 2004 @ 10:20:14 CDT in Modules Antonio writes:
|
New NukeC - Announcements & Classifieds
Posted on Tuesday, June 29, 2004 @ 04:55:17 CDT in Modules Antonio writes:
|
Ultra Downloads Module
Posted on Friday, May 21, 2004 @ 06:33:31 CDT in Modules weblord writes:
|
Your Account Module Being Reworked
Posted on Friday, April 23, 2004 @ 20:51:13 CDT in Modules 64bitguy writes:
|